首页> 外国专利> Detecting domains generated by a domain generation algorithm

Detecting domains generated by a domain generation algorithm

机译:检测域生成算法生成的域

摘要

Apparatus and techniques for determining whether a domain name has been generated by a domain generation algorithm (DGA) are disclosed. A first domain name is classified as either a likely domain generation algorithm (DGA) domain name or a likely non-DGA domain name, based on one or more features of the first domain name. In addition, statistics are determined regarding requests for the first domain name. Additional domain names are identified that share an infrastructure with the first domain name. A determination is made regarding whether the first domain name and/or one or more of the additional domain names are likely to have been generated by a DGA, based on a result of one or more of the classifying, the statistics, or the identifying. A security vulnerability related to one or more of the likely DGA domain names is then mitigated.
机译:公开了用于确定域名是否已经由域生成算法(DGA)生成的设备和技术。基于第一域名的一个或多个特征,第一域名被分类为可能的域名生成算法(DGA)域名或可能的非DGA域名。另外,确定关于对第一域名的请求的统计信息。标识与第一个域名共享基础结构的其他域名。基于分类,统计或标识中的一个或多个的结果,确定第一域名和/或一个或多个附加域名是否可能由DGA生成。然后可以缓解与一个或多个可能的DGA域名相关的安全漏洞。

著录项

  • 公开/公告号US9876814B2

    专利类型

  • 公开/公告日2018-01-23

    原文格式PDF

  • 申请/专利权人 CISCO TECHNOLOGY INC.;

    申请/专利号US201514708890

  • 发明设计人 STEVE MCKINNEY;

    申请日2015-05-11

  • 分类号H04L29/06;H04L12/26;

  • 国家 US

  • 入库时间 2022-08-21 12:55:50

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号